MEDIUM
Cross-site scripting (XSS) vulnerability in alpha.php in phpMyDirectory 10.4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the letter parameter
Published Sep 13, 2006
4.3
MEDIUMCVSS 2.0
EPSS 0.92%
Description
Cross-site scripting (XSS) vulnerability in alpha.php in phpMyDirectory 10.4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the letter parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Affected products
No data.
OR
- ≤ 10.4.6
- 1.0
- 1.0.1
- 1.0.2
- 1.0.3
- 1.0.4
- 1.0.5
- 1.0.6
- 1.0.7
- 1.0.8
- 1.0.9
- 1.1.0
- 1.1.1
- 1.1.2
- 1.1.3
- 1.1.4
- 1.1.5
- 1.1.6
- 1.1.7
- 1.1.8
- 1.1.9
- 1.2.0
- 1.2.0
- 1.2.1
- 1.3.0
- 1.3.0
- 1.3.1
- 1.3.2
- 1.3.3
- 1.3.4
- 1.3.5
- 1.4.0
- 1.4.1
- 10.1.3
- 10.4.4
- 10.4.5
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- http://secunia.com/advisories/21875 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.vupen.com/english/advisories/2006/3562 vdb-entryx_refsource_VUPEN
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/21875 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.vupen.com/english/advisories/2006/3562 | vdb-entryx_refsource_VUPEN |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Sep 13, 2006
Updated Aug 7, 2024
Reserved Sep 13, 2006
Link CVE-2006-4755
CISA Vulnrichment
Updated n/a